CVE-2021-23851

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
30/03/2022
Last modified:
08/04/2022

Description

A specially crafted TCP/IP packet may cause the camera recovery image web interface to crash. It may also cause a buffer overflow which could enable remote code execution. The recovery image can only be booted with administrative rights or with physical access to the camera and allows the upload of a new firmware in case of a damaged firmware.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:bosch:autodome_ip_4000i_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:autodome_ip_4000i:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:autodome_ip_5000i_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:autodome_ip_5000i:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:autodome_ip_starlight_5000i_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:autodome_ip_starlight_5000i:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:autodome_ip_starlight_7000i_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:autodome_ip_starlight_7000i:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:dinion_ip_3000i_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:dinion_ip_3000i:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:dinion_ip_bullet_4000i_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:dinion_ip_bullet_4000i:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:dinion_ip_bullet_5000_firmware:cpp7.3:*:*:*:*:*:*:*
cpe:2.3:h:bosch:dinion_ip_bullet_5000:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:dinion_ip_bullet_5000i_firmware:cpp7.3:*:*:*:*:*:*:*